Integrate PhonePe with WooCommerce <= 1.2.1 - Unauthenticated Payment Bypass
mediumThe Integrate PhonePe with WooCommerce plugin for WordPress is vulnerable to Payment Bypass in all versions up to, and including, 1.2.1. This makes it possible for unauthenticated attackers to bypass payments.
- CVSS:
- 5.3
- Affected:
- up to 1.2.1
- Fix:
- No patched version reported
- Disclosed:
- Jun 25, 2026